ttdrecordcpu.dll

Description: Time Travel Debugging CPU Recorder Runtime

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5438

Architecture: 32-bit

Operating System: Windows NT

SHA256: 90bbe9577627685be1394807526f1b6d

File Size: 1.3 MB

Uploaded At: Dec. 1, 2025, 8:05 a.m.

Views: 18

Exported Functions

  • ClearClientTlsValueForThreadId (Ordinal: 1, Address: 0x21590)
  • FlushCodeCaches (Ordinal: 2, Address: 0x21dd0)
  • GetClientTlsValueForCurrentThread (Ordinal: 3, Address: 0x215f0)
  • GetInstructionCounts (Ordinal: 4, Address: 0x218a0)
  • GetRegisterOffsets (Ordinal: 5, Address: 0x21df0)
  • InitializeEmulateOnlyClient (Ordinal: 6, Address: 0x21e30)
  • InitializeGlobalState (Ordinal: 7, Address: 0x21360)
  • InitializeNirvanaClient (Ordinal: 8, Address: 0x736e0)
  • InitializeRecorder (Ordinal: 9, Address: 0x76d50)
  • InitializeSmartCpuClient (Ordinal: 10, Address: 0x21320)
  • InjectThread (Ordinal: 11, Address: 0x81810)
  • IsEmulatingCurrentThread (Ordinal: 12, Address: 0x21840)
  • IsSimulating (Ordinal: 13, Address: 0x81075)
  • OpenWriter (Ordinal: 14, Address: 0x76c50)
  • ParametersBlock (Ordinal: 15, Address: 0x127a5c)
  • RegisterInstrumentationCallbacks (Ordinal: 16, Address: 0x21f10)
  • RegisterRecordCallbacks (Ordinal: 17, Address: 0x22050)
  • RequestUnhookedFunctions (Ordinal: 18, Address: 0x22580)
  • ResetMaxInstructionsToEmulate (Ordinal: 19, Address: 0x21960)
  • ResumeSimulation (Ordinal: 20, Address: 0x219f0)
  • RunCallbackWithSmartContextForCurrentThread (Ordinal: 21, Address: 0x21530)
  • SetRuntimeOptions (Ordinal: 22, Address: 0x21d20)
  • SetThreadNative (Ordinal: 23, Address: 0x213c0)
  • StartEmulatingCurrentThread (Ordinal: 24, Address: 0x21790)
  • StopEmulatingCurrentThread (Ordinal: 25, Address: 0x217e0)
  • StubDllEntry (Ordinal: 26, Address: 0x81860)
  • StubDllEntryWow64 (Ordinal: 27, Address: 0x81890)
  • TriggerOSNotification (Ordinal: 28, Address: 0x1a420)
  • TryPauseSimulation (Ordinal: 29, Address: 0x81070)
  • TtdWriterAddCustomEvent (Ordinal: 30, Address: 0x76ef0)
  • TtdWriterDumpHeaps (Ordinal: 31, Address: 0x76ed0)
  • TtdWriterDumpModuleData (Ordinal: 32, Address: 0x76eb0)
  • TtdWriterDumpSnapshot (Ordinal: 33, Address: 0x76e90)
  • TtdWriterGetFileName (Ordinal: 34, Address: 0x76e70)
  • TtdWriterGetState (Ordinal: 35, Address: 0x76f90)
  • TtdWriterGetThrottleState (Ordinal: 36, Address: 0x76f40)
  • TtdWriterRelease (Ordinal: 37, Address: 0x76e50)
  • TtdWriterResetThrottle (Ordinal: 38, Address: 0x76f70)
  • TtdWriterResumeRecording (Ordinal: 39, Address: 0x76bc0)
  • TtdWriterStartRecordingCurrentThread (Ordinal: 40, Address: 0x76f10)
  • TtdWriterStopRecordingCurrentThread (Ordinal: 41, Address: 0x76b20)
  • TtdWriterTryPauseRecording (Ordinal: 42, Address: 0x76bb0)
  • g_ttdConstants (Ordinal: 43, Address: 0x1075c0)

Imported DLLs & Functions

api-ms-win-core-libraryloader-l1-1-0.dll
  • GetModuleHandleW (Address: 0x100d094c)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcessId (Address: 0x100d0958)
  • GetCurrentThreadId (Address: 0x100d0954)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x100d0960)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x100d0968)
ntdll.dll
  • _i64tow_s (Address: 0x100d09e0)
  • _itow_s (Address: 0x100d09f4)
  • _snwprintf_s (Address: 0x100d09c0)
  • _snwscanf_s (Address: 0x100d09c4)
  • _ui64tow_s (Address: 0x100d09f8)
  • _ultow_s (Address: 0x100d09dc)
  • _vsnprintf_s (Address: 0x100d09e8)
  • _vsnwprintf (Address: 0x100d09e4)
  • _vsnwprintf_s (Address: 0x100d0998)
  • _wcsicmp (Address: 0x100d09ac)
  • _wcsnicmp (Address: 0x100d09a0)
  • iswalpha (Address: 0x100d09b0)
  • iswdigit (Address: 0x100d09ec)
  • iswlower (Address: 0x100d09a8)
  • LdrGetDllHandle (Address: 0x100d0988)
  • LdrGetProcedureAddress (Address: 0x100d0970)
  • memcpy (Address: 0x100d09f0)
  • memmove (Address: 0x100d09fc)
  • memset (Address: 0x100d0a00)
  • NtRaiseException (Address: 0x100d0984)
  • RtlAllocateHeap (Address: 0x100d09a4)
  • RtlCaptureContext (Address: 0x100d0980)
  • RtlGetProcessHeaps (Address: 0x100d09cc)
  • RtlInitString (Address: 0x100d0974)
  • RtlInitUnicodeString (Address: 0x100d098c)
  • RtlLockHeap (Address: 0x100d09d8)
  • RtlNtStatusToDosError (Address: 0x100d097c)
  • RtlQueryPerformanceCounter (Address: 0x100d09b4)
  • RtlQueryPerformanceFrequency (Address: 0x100d09b8)
  • RtlUnlockHeap (Address: 0x100d09d4)
  • RtlWalkHeap (Address: 0x100d09d0)
  • RtlWow64CallFunction64 (Address: 0x100d0994)
  • strrchr (Address: 0x100d0978)
  • strstr (Address: 0x100d0a04)
  • wcscpy_s (Address: 0x100d0990)
  • wcsncpy_s (Address: 0x100d09c8)
  • wcsnlen (Address: 0x100d09bc)
  • wcstoul (Address: 0x100d099c)